aboutsummaryrefslogtreecommitdiffstats
path: root/netx/net/sourceforge/jnlp/security/CertVerifier.java
diff options
context:
space:
mode:
authorDeepak Bhole <[email protected]>2011-02-01 10:53:44 -0500
committerDeepak Bhole <[email protected]>2011-02-01 10:53:44 -0500
commit1a96cc8537ee8a6e9aff7465568ba76b949b1535 (patch)
tree24c7eea3467d44d5c722509164318270b466ff83 /netx/net/sourceforge/jnlp/security/CertVerifier.java
parentf64c8bd3c5ad5b3e12c2f767008944df7a79eea0 (diff)
RH672262, CVE-2011-0025: IcedTea jarfile signature verification bypass
Fixes JAR signature handling so that multiply/partially signed jars are correctly handled.
Diffstat (limited to 'netx/net/sourceforge/jnlp/security/CertVerifier.java')
-rw-r--r--netx/net/sourceforge/jnlp/security/CertVerifier.java3
1 files changed, 2 insertions, 1 deletions
diff --git a/netx/net/sourceforge/jnlp/security/CertVerifier.java b/netx/net/sourceforge/jnlp/security/CertVerifier.java
index cef69c3..842a865 100644
--- a/netx/net/sourceforge/jnlp/security/CertVerifier.java
+++ b/netx/net/sourceforge/jnlp/security/CertVerifier.java
@@ -76,7 +76,7 @@ public interface CertVerifier {
* Return a valid certificate path to this certificate(s) being verified
* @return The CertPath
*/
- public ArrayList<CertPath> getCerts();
+ public CertPath getCertPath();
/**
* Returns the application's publisher's certificate.
@@ -89,4 +89,5 @@ public interface CertVerifier {
* the event that the application is self signed.
*/
public abstract Certificate getRoot();
+
}